| ▲ | dummydummy1234 3 hours ago | |||||||
Why are v8 isolates bad, I see speculative execution hacks, but are there others? | ||||||||
| ▲ | phickey 3 hours ago | parent | next [-] | |||||||
Despite naming them isolates, the V8 team does not consider them to be a security boundary. | ||||||||
| ▲ | vmg12 2 hours ago | parent | prev | next [-] | |||||||
The v8 JIT is very complex and can lead to sandbox escapes if there are type confusion bugs. | ||||||||
| ▲ | binsquare 3 hours ago | parent | prev [-] | |||||||
v8 isolates are still shared kernel while microvm's are separate kernel + hardware virtualization through hypervisor guarantees I wouldn't call it bad either, just different tools for different things | ||||||||
| ||||||||